jhh/firewalld-cookbook

View on GitHub
providers/port.rb

Summary

Maintainability
A
1 hr
Test Coverage
#
# Cookbook Name:: firewalld
# Provider:: port
#
# Copyright:: 2015, Jeff Hutchison

use_inline_resources

action :add do
  e = execute "add port #{new_resource.port} to zone" do
    not_if "firewall-cmd --permanent #{zone} --query-port=#{new_resource.port}"
    command(<<-EOC)
      firewall-cmd #{zone} --add-port=#{new_resource.port}
      firewall-cmd --permanent #{zone} --add-port=#{new_resource.port}
    EOC
  end
  new_resource.updated_by_last_action(e.updated_by_last_action?)
end

action :remove do
  e = execute "remove port #{new_resource.port} from zone" do
    only_if "firewall-cmd --permanent #{zone} --query-port=#{new_resource.port}"
    command(<<-EOC)
      firewall-cmd #{zone} --remove-port=#{new_resource.port}
      firewall-cmd --permanent #{zone} --remove-port=#{new_resource.port}
    EOC
  end
  new_resource.updated_by_last_action(e.updated_by_last_action?)
end

def zone
  new_resource.zone ? "--zone=#{new_resource.zone}" : ''
end